Package Health

softcortex/magic-installer

The package includes tests, release notes, a clear license, and a non-archived source tree. Its one-person maintenance base, minimal recent commit activity, and lack of security policy or scanning increase continuity risk.

Latest v1.4.6PackagistPackagist

63%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Lifecycle scriptscaution

A post-autoload-dump install-time script runs during Composer installation, adding execution surface that deserves review even though the signal provides no evidence that it is unsafe.

Maintainerscaution

Only one registry account, SoftCortex, has publish access. The linked repository is owned by a user rather than an organization, so the repository evidence does not compensate for this concentration.

Repo bus factorcaution

One contributor made 100% of recent commits. Because the repository is user-owned, there is no organization backing shown to reduce the handoff risk.

Repo commit activitycaution

Only 1 commit from 1 active maintainer was recorded in the last 3 months. The recent push is positive, but this is thin evidence of sustained maintenance.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools were detected, leaving security checks less transparent.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

SoftCortex

Direct Dependencies

DependencyLast ReleaseScore
illuminate/contracts
Version ^11.0||^12.0||^13.0
—
—
spatie/laravel-package-tools
Version ^1.16
—
—

Weekly Downloads

Info

Last Published
14 days ago
Created
9 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform